Назад
5 дней назад

Senior Security Engineer, Detection and Response (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer, Detection and Response (Cybersecurity): Building production-grade detections, SOAR automations, integrations, and data pipelines for Roblox’s global SIRT/SOC capability with an accent on incident command, forensic investigations, threat hunting, and follow-the-sun operations. Focus on architecting automated security response systems, leading complex incidents independently across European hours, and converting investigations into durable detections and tooling.

Location: London, UK; hybrid office presence required Tuesday, Wednesday, and Thursday, with optional presence on Monday and Friday. The role includes semi-regular travel to the USA headquarters.

Company

Roblox builds a platform and tools for creating and sharing 3D immersive digital experiences.

What you will do

  • Design, write, and maintain production-quality detections, SOAR playbooks, integrations, enrichment pipelines, and detections-as-code.
  • Develop security tooling, case-management integrations, and automation supporting reliable follow-the-sun handoffs.
  • Serve as the primary incident commander for the European time zone and lead serious incidents from identification through resolution.
  • Architect the detection and response engineering function, prioritizing automation, orchestration, and risk-based monitoring.
  • Conduct forensic investigations and threat hunts across enterprise and production environments.
  • Collaborate with Security, Engineering, Legal, HR, executives, external partners, developers, and customers during major vulnerabilities and platform-wide events.

Requirements

  • 10+ years of experience across security engineering, information security, IT, infrastructure/SRE, and/or incident response.
  • 7+ years specializing in detection or response, including building detections, automation, or security tooling.
  • Production-quality scripting and experience building automations, integrations, and data pipelines.
  • Extensive incident commander experience, including independent decision-making and executive communication.
  • Expertise in threat investigations, SIEM, EDR, IDS/IPS, NDR, SOAR, and incident response frameworks including NIST, Cyber Kill Chain, and MITRE ATT&CK.
  • Bachelor's degree in Computer Science, Cybersecurity, or a related technical field, or equivalent experience; advanced degree preferred.

Nice to have

  • Experience with public cloud, operating systems, virtualization, containerization, networking, build and development infrastructure, and hardware.
  • Experience working independently in satellite offices or distributed teams.

Culture & Benefits

  • Highly autonomous role with responsibility for regional security operations and critical decisions.
  • Dedicated private workspace within a shared office environment.
  • Collaboration with security and engineering colleagues at the US West Coast headquarters.
  • Regular travel to the USA for alignment with central engineering and security leadership.
  • Equal employment opportunities and reasonable accommodations during the recruiting process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →